CVE-2025-54013Cross-site Scripting in Welcart Welcart E-commerce

Severity
N/A
No vector
EPSS
0.1%
top 84.40%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 16

Description

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in info@welcart Welcart e-Commerce usc-e-shop allows Stored XSS.This issue affects Welcart e-Commerce: from n/a through <= 2.11.16.

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-7r5g-766r-x96m: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in nanbu Welcart e-Commerce allows Stored XSS2025-07-16
CVEList
WordPress Welcart e-Commerce plugin <= 2.11.16 - Cross Site Scripting (XSS) Vulnerability2025-07-16
CVE-2025-54013 — Cross-site Scripting | cvebase